Vulnerabilities > Uncontrolled Recursion

DATE CVE VULNERABILITY TITLE RISK
2019-01-14 CVE-2019-6285 Uncontrolled Recursion vulnerability in Yaml-Cpp Project Yaml-Cpp 0.6.2
The SingleDocParser::HandleFlowSequence function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted YAML file.
network
low complexity
yaml-cpp-project CWE-674
6.5
2019-01-11 CVE-2019-6131 Uncontrolled Recursion vulnerability in Artifex Mupdf 1.14.0
svg-run.c in Artifex MuPDF 1.14.0 has infinite recursion with stack consumption in svg_run_use_symbol, svg_run_element, and svg_run_use, as demonstrated by mutool.
local
low complexity
artifex CWE-674
5.5
2018-10-18 CVE-2018-18484 Uncontrolled Recursion vulnerability in GNU Binutils 2.31
An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31.
local
low complexity
gnu CWE-674
5.5
2018-10-06 CVE-2018-18020 Uncontrolled Recursion vulnerability in Qpdf Project Qpdf 8.2.1
In QPDF 8.2.1, in libqpdf/QPDFWriter.cc, QPDFWriter::unparseObject and QPDFWriter::unparseChild have recursive calls for a long time, which allows remote attackers to cause a denial of service via a crafted PDF file.
local
low complexity
qpdf-project CWE-674
3.3
2018-09-04 CVE-2018-16426 Uncontrolled Recursion vulnerability in Opensc Project Opensc
Endless recursion when handling responses from an IAS-ECC card in iasecc_select_file in libopensc/card-iasecc.c in OpenSC before 0.19.0-rc1 could be used by attackers able to supply crafted smartcards to hang or crash the opensc library using programs.
low complexity
opensc-project CWE-674
4.3
2018-08-23 CVE-2018-1158 Uncontrolled Recursion vulnerability in Mikrotik Routeros
Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a stack exhaustion vulnerability.
network
low complexity
mikrotik CWE-674
6.5
2018-07-09 CVE-2018-1000618 Uncontrolled Recursion vulnerability in Eosio Project EOS
EOSIO/eos eos version after commit f1545dd0ae2b77580c2236fdb70ae7138d2c7168 contains a stack overflow vulnerability in abi_serializer that can result in attack eos network node.
network
low complexity
eosio-project CWE-674
critical
9.8
2018-05-31 CVE-2018-11597 Uncontrolled Recursion vulnerability in Espruino
Espruino before 1.99 allows attackers to cause a denial of service (application crash) with a user crafted input file via a Buffer Overflow during syntax parsing because of a missing check for stack exhaustion with many '{' characters in jsparse.c.
local
low complexity
espruino CWE-674
5.5
2018-05-18 CVE-2018-11254 Uncontrolled Recursion vulnerability in Podofo Project Podofo 0.9.5
An issue was discovered in PoDoFo 0.9.5.
local
low complexity
podofo-project CWE-674
5.5
2018-05-18 CVE-2018-8015 Uncontrolled Recursion vulnerability in Apache ORC
In Apache ORC 1.0.0 to 1.4.3 a malformed ORC file can trigger an endlessly recursive function call in the C++ or Java parser.
network
low complexity
apache CWE-674
7.5